CVE
- Id
- 78872
- CVE No.
- CVE-2015-1595
- Status
- Candidate
- Description
- The Siemens SPCanywhere application for Android and iOS does not use encryption during lookups of system ID to IP address mappings, which allows man-in-the-middle attackers to discover alarm IP addresses and spoof servers by intercepting the client-server data stream.
- Phase
- Assigned (20150213)
- Votes
- None (candidate not yet proposed)
- Comments